Signature-Based Content Identifier for Packet Flow Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional network systems lack the ability to monitor and manage the content of packet flows, relying solely on packet headers for routing, which limits their capacity to secure and track sensitive information, leading to potential unauthorized distribution and data integrity issues.

Innovation Solution

A signature-based content identifier (SCI) system that monitors packet flows by extracting and comparing digital signatures associated with the content, issuing alerts for unauthorized distribution and enabling secure tracking and management of packet flows.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Speed

If conventional network systems rely solely on packet headers for routing, then device complexity is reduced and processing speed is improved, but the ability to monitor and manage content of packet flows is lost

Engineering Contradiction:
Improvepacket processing speedVSAvoidcontent monitoring capability
Core Design Contradiction:
SpeedVSLoss of information

Solution Approach 1:

The patent extracts digital signatures from packet content and separates them from the main packet flow processing. By taking out the signature extraction function as a distinct process that occurs after basic packet routing, the system maintains fast header-based processing while adding content monitoring capability through the extracted signature comparison mechanism.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces digital signatures as an intermediary element between packet content and network monitoring systems. These signatures act as mediators that carry content identification information through the network without altering the original packet flow, enabling content monitoring without compromising processing speed.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If network systems do not have the ability to monitor packet flow content, then ease of operation is maintained and system complexity is reduced, but data integrity and security are compromised

Engineering Contradiction:
Improvedata integrityVSAvoidnetwork monitoring complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by attaching digital signatures to packet content before transmission through the network. These pre-embedded signatures enable content identification and integrity verification at network nodes without requiring complex real-time content analysis, thus improving reliability while controlling complexity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent uses digital signatures as copies of content identification information that can be extracted and compared without copying the entire packet content. This approach enables content monitoring and integrity verification while minimizing the complexity of processing and storing actual packet data.

Inventive Principle:
Principle #26Copying

3Reliability

If network providers transmit packets without monitoring content, then productivity is maintained and energy consumption is reduced, but unauthorized distribution cannot be prevented

Engineering Contradiction:
Improveunauthorized distribution preventionVSAvoidpacket transmission efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent implements feedback mechanisms where network nodes compare extracted digital signatures against authorized content lists and provide feedback actions (allow/block) based on the comparison results. This feedback loop enables unauthorized distribution prevention while maintaining efficient packet transmission through automated decision-making without manual intervention.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS9479522B1Method and apparatus for managing content distribution using content signatures
Publication Date: 2016.10.25 TELLABS OPERATIONS
  • US9479522B1 patent drawing
  • US9479522B1 patent drawing
  • US9479522B1 patent drawing

AI summary

A method and apparatus for managing packet flow based on content signatures are disclosed. A process of netflow management, in one embodiment, is able to receive a packet flow traveling through a communications network and obtain a signature from the packet flow. Upon retrieving a predefined signature from storage in accordance with the signature, the signature and the predefined signature are compared. A message of unauthorized distribution associated with the packet flow is issued when bit pattern of the signature matches with bit pattern of the predefined signature.